{"id":15718,"date":"2025-08-07T09:44:17","date_gmt":"2025-08-07T09:44:17","guid":{"rendered":"https:\/\/dmsretail.com\/RetailNews\/what-do-the-pandora-ms-and-co-op-cyber-attacks-mean-for-uk-retailers\/"},"modified":"2025-08-07T09:44:17","modified_gmt":"2025-08-07T09:44:17","slug":"what-do-the-pandora-ms-and-co-op-cyber-attacks-mean-for-uk-retailers","status":"publish","type":"post","link":"https:\/\/dmsretail.com\/RetailNews\/what-do-the-pandora-ms-and-co-op-cyber-attacks-mean-for-uk-retailers\/","title":{"rendered":"What do the Pandora, M&#038;S and Co-op cyber-attacks mean for UK retailers?"},"content":{"rendered":"<p> <p><a href=\"https:\/\/dmsretail.com\/online-workshops-list\/\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-496\" src=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png\" alt=\"Retail Online Training\" width=\"729\" height=\"91\" srcset=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png 729w, https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90-300x37.png 300w\" sizes=\"auto, (max-width: 729px) 100vw, 729px\" \/><\/a><\/p><br \/>\n<\/p>\n<div itemprop=\"text\">\n<p><span style=\"font-weight: 400;\">Jewellery specialist Pandora has become the latest retailer to face a cyber-attack, with the brand confirming yesterday (5 August) that some customer data had been stolen during the incident.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The business assured that \u201conly very common types of data\u201d had been taken in the attack, and that no passwords or credit card details had been involved.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Pandora joins a spate of retailers including M&amp;S, Co-op, Harrods, Adidas and Chanel that have been hit with cyber-attacks in recent months.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Problems for M&amp;S kicked off over the Easter holiday weekend, with shoppers at the food and fashion giant reporting they were unable to use contactless payments or click and collect services<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The retailer\u2019s CEO Stuart Machin went on to inform shoppers that it was \u201cmanaging a cyber incident,\u201d and that it needed to make \u201csome small changes\u201d to store operations to \u201cprotect you and the business\u201d.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">On 30 April, fellow grocer Co-op also fell victim to a cyber-attack, with some of the convenience retailer\u2019s back-office systems and call centre services breached.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Additionally, on 2 May, it emerged that Harrods had faced a cyber-attack, with the department store said to be engaging specialists to help investigate and fix the issue. However, the retailer managed to thwart the attempted intrusion.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The attacks prompted <\/span><span style=\"font-weight: 400;\">the chair of the Business and Trade Select Committee to write to the bosses of M&amp;S and Co-op<\/span><span style=\"font-weight: 400;\"> to seek reassurance that they were managing the incidents effectively.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Retailers ranging from <\/span><span style=\"font-weight: 400;\">JD Sports<\/span><span style=\"font-weight: 400;\"> to <\/span><span style=\"font-weight: 400;\">Boots<\/span><span style=\"font-weight: 400;\"> and <\/span><span style=\"font-weight: 400;\">WHSmith<\/span><span style=\"font-weight: 400;\"> have all been targeted in recent years, and insurance firm QBE also found that the number of \u201cdisruptive and destructive global cyber-attacks\u201d occurring per year had <\/span><span style=\"font-weight: 400;\">more than doubled from 2020 until 2024.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">With a host of attacks plaguing the industry, what could the cyber-attacks mean for UK retailers, and what is the industry\u2019s best recourse to defend itself?<\/span><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-187004\" src=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/Foodhall-interior-2.jpg\" alt=\"M&amp;S \" width=\"1800\" height=\"1198\" srcset=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/Foodhall-interior-2.jpg 1800w, https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/Foodhall-interior-2-300x200.jpg 300w, https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/Foodhall-interior-2-1024x682.jpg 1024w\" sizes=\"auto, (max-width: 1800px) 100vw, 1800px\"\/><\/p>\n<h3>\u2018A constantly moving picture\u2019<\/h3>\n<p><span style=\"font-weight: 400;\">The recent torrent of cyber-attacks has shaken up the retail industry, exposing its vulnerabilities and prompting businesses to re-evaluate cyber security strategies.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">To keep themselves safe, Walker Morris regulatory and compliance partner Andrew Northage emphasises that businesses must avoid \u201cstanding still\u201d since hackers are \u201ctrying new things all the time\u201d.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cIf you think you can stand still and be cyber protected, that would be a big mistake to make,\u201d he says.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cThe picture is constantly moving and evolving, and you have to move and evolve with it. Internally and externally, you need to make sure you\u2019ve got the best support and advice that you can get using people that are really on top of it, because it\u2019s a constantly moving picture.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Retail Technology Magazine publisher Miya Knights also highlights the importance of retailers sharing industry knowledge amongst each other once attacks occur and in order to defend themselves in the first place.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cChief information security officers (CISOs) in retail need to get round a table and talk about what happened and share best practice and knowledge so they can all be better armed against these hackers,\u201d she says.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cWhat floats all boats can also sink all boats, so I think they need to share knowledge about what\u2019s happened so they can all be better protected.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The need for knowledge sharing is particularly urgent, as research from cybersecurity firm Cisco found that just one in four UK firms are fully prepared to defend against increasingly complex cyber threats, with<\/span><span style=\"font-weight: 400;\"> nearly half of those surveyed having over ten unfilled cybersecurity roles <\/span><span style=\"font-weight: 400;\">across their respective organisations.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">British Retail Consortium (BRC) CEO Helen Dickinson highlights that \u201cretailers spend hundreds of millions every year to mitigate these risks and ensure they can continue to serve customers,\u201d adding that \u201cmany businesses continue to work closely with the National Cyber Security Centre to share cyber threat intelligence, and are continually reviewing their systems to ensure they are as secure as possible.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Regarding how long recovery from the attacks could take, Northage argues: \u201cI would say probably months, it\u2019s unlikely to be weeks, I\u2019d be surprised if it\u2019s years, but you\u2019re probably looking at six months plus.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cIt very much varies on what information they\u2019ve got, how they got into the systems, and how complex the systems are.\u201d<\/span><\/p>\n<p><picture loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-187104\"><source type=\"image\/webp\" srcset=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/harrods-cyber-attack.jpg.webp 2782w\" sizes=\"auto, (max-width: 2782px) 100vw, 2782px\"\/><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/harrods-cyber-attack.jpg\" alt=\"Harrods\" width=\"2782\" height=\"1476\" srcset=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/harrods-cyber-attack.jpg 2782w, https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/harrods-cyber-attack-300x159.jpg 300w, https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/harrods-cyber-attack-1024x543.jpg 1024w\" sizes=\"auto, (max-width: 2782px) 100vw, 2782px\"\/>\n<\/picture>\n<span style=\"font-weight: 400;\">The impacts from the M&amp;S attack in particular were wide reaching, with issues including <\/span><span style=\"font-weight: 400;\">empty shelves,<\/span><span style=\"font-weight: 400;\"> the <\/span><span style=\"font-weight: 400;\">suspension of all online orders, <\/span><span style=\"font-weight: 400;\">and shutting its work from home staff out of some of its IT systems.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">However, Skillcast CEO Vivek Dodd highlights that the \u201creal damage\u201d to cyber-attacks is often to consumers\u2019 trust, \u201cparticularly when the attack causes wide-spread public concern\u201d.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Northage notes that while the stock shortages at M&amp;S impacted customers, \u201cit also affects the company in terms of a loss of confidence and shoppers going elsewhere.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400;\">He also points out that M&amp;S and Co-op\u2019s loyalty schemes hold \u201clots of customer data\u201d which was \u201cthe sort of thing that would make your average customer nervous\u201d as to what details are out there. <\/span><\/p>\n<p>\u00a0<\/p>\n<h3><picture loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-187103\"><source type=\"image\/webp\" srcset=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/ms-screenshot.jpg.webp 2842w\" sizes=\"auto, (max-width: 2842px) 100vw, 2842px\"\/><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/ms-screenshot.jpg\" alt=\"M&amp;S\" width=\"2842\" height=\"1210\" srcset=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/ms-screenshot.jpg 2842w, https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/ms-screenshot-300x128.jpg 300w, https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/ms-screenshot-1024x436.jpg 1024w\" sizes=\"auto, (max-width: 2842px) 100vw, 2842px\"\/>\n<\/picture>\nWho else is at risk?<\/h3>\n<p><span style=\"font-weight: 400;\">With M&amp;S, Co-op and Harrods the first retailers to hit the headlines with the attacks, shoppers may be left wondering why these particular retailers were vulnerable.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Although Knights says she does not think anyone can definitively say why they were targeted, they had been picked out on one level due to them being \u201cprominent household names\u201d.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cThey\u2019re retailers, so security is not core to their businesses in such a way as maybe financial services or the public sector,\u201d she notes.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cBut nevertheless, their turnover makes them an attractive target in the fact that they\u2019re large organisations and they handle a lot of customer data.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Despite this, she argues: \u201cI would expect the hackers targeted a number of retailers, and the reason M&amp;S, Co-op and Harrods have hit the headlines is because they were vulnerable.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Regarding other retailer types that could be at risk, Knights thinks those most vulnerable would be \u201cthose that have a sizable business with large tier one scale turnover across many channels\u201d.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cThat means they potentially use digital heavily across all of their customer and supplier facing channels, and therefore there is more surface area to secure.\u201d\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Northage thinks any other retailers could be at risk of cyber-attacks: \u201cWhen M&amp;S and Co-op were the first two, you think is it grocery?<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cBut the fact that we\u2019ve now had Harrods as well says to me that it\u2019s maybe supply chain or it\u2019s something to do with customers where they\u2019ve found the vulnerability.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cObviously lots of other big retailers will have similar systems, particularly if they\u2019re in the FMCG market.\u201d<\/span><\/p>\n<h3><picture loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-169216\"><source type=\"image\/webp\" srcset=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2024\/08\/Wincanton-proudly-renews-30-year-partnership-with-Co-op.jpg.webp 450w\" sizes=\"auto, (max-width: 920px) 100vw, 920px\"\/><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2024\/08\/Wincanton-proudly-renews-30-year-partnership-with-Co-op.jpg\" alt=\"Co-op\" width=\"920\" height=\"613\" srcset=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2024\/08\/Wincanton-proudly-renews-30-year-partnership-with-Co-op.jpg 450w, https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2024\/08\/Wincanton-proudly-renews-30-year-partnership-with-Co-op-300x200.jpg 300w\" sizes=\"auto, (max-width: 920px) 100vw, 920px\"\/>\n<\/picture>\nA \u2018wakeup call\u2019 for UK retailers<\/h3>\n<p><span style=\"font-weight: 400;\">The attacks raise the question of whether the UK retail sector is particularly vulnerable to cyber-attacks.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Although Knights does not think so, she argues: \u201cThis is a wakeup call for UK retailers where security may not have been core to their business, but it should be.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400;\">She adds that this is particularly pertinent given the growth of online and multichannel retail in the wake of Covid alongside the declining use of cash amongst shoppers, all of which makes the sector \u201cmore vulnerable\u201d to future cyber-attacks.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cRetail organisations should have the same checks and balances in place as you would expect government organisations and financial services organisations to have,\u201d she concludes.<\/span><\/p>\n<p><em><strong>Click here to sign up to Retail Gazette\u2018s free daily email newsletter<\/strong><\/em><\/p>\n<p><!-- AddThis Advanced Settings above via filter on the_content --><!-- AddThis Advanced Settings below via filter on the_content --><!-- AddThis Advanced Settings generic via filter on the_content --><!-- AddThis Share Buttons above via filter on the_content --><!-- AddThis Share Buttons below via filter on the_content --><!-- AddThis Share Buttons generic via filter on the_content --><\/div>\n<p><p><a href=\"https:\/\/dmsretail.com\/online-workshops-list\/\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-496\" src=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png\" alt=\"Retail Online Training\" width=\"729\" height=\"91\" srcset=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png 729w, https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90-300x37.png 300w\" sizes=\"auto, (max-width: 729px) 100vw, 729px\" \/><\/a><\/p><br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Jewellery specialist Pandora has become the latest retailer to face a cyber-attack, with the brand confirming yesterday (5 August) that some customer data had been [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":15719,"comment_status":"","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[13],"tags":[],"class_list":["post-15718","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-magazines"],"_links":{"self":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts\/15718","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/comments?post=15718"}],"version-history":[{"count":0,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts\/15718\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/media\/15719"}],"wp:attachment":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/media?parent=15718"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/categories?post=15718"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/tags?post=15718"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}